Skip to main content
joaomdias
New Member
November 24, 2022
Question

fortianalyzer create a ip group to monitoring traffic

  • November 24, 2022
  • 2 replies
  • 1091 views

I want to create an email alert and a daily report in fortianalyzer that will allow me to alert if a group of 20 ips from different subnets access a host. In the traffic log do I have to put 20 times the src_ip or is there any way to create a group of ips to monitor and add more whenever needed?

2 replies

Anthony_E
Staff
Staff
November 28, 2022

Hello joamdias,

 

Thank you for using the Community Forum.

I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.


Regards,

Best Regards
Anthony_E
Staff
Staff
November 30, 2022

Hello`joamdias,

 

Here is the answer from one of our FAZ expert:

 

FAZ does not have a feature for customers to group the IPs for the report filter/email alert
You will need to input the x number of IPs in the report/email alert.

 

I hope it will help you. If not, do not hesitate to come back to this post and we will continue to find a solution.

 

Regards,

Best Regards
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!